RHSA-2024:8801: Important: openexr security update
Important: openexr security update
Other sources
OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are specific to this format. This package containes the binaries for OpenEXR.<br>Security Fix(es):<br><li> OpenEXR: Heap Overflow in Scanline Deep Data Parsing (CVE-2023-5841)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:8801?
The severity of RHSA-2024:8801 is classified as important.
How do I fix RHSA-2024:8801?
To fix RHSA-2024:8801, update the openexr package to version 3.1.1-2.el9_2.1 or later.
Which software is affected by RHSA-2024:8801?
RHSA-2024:8801 affects several Red Hat products, including various versions of Red Hat Enterprise Linux and CodeReady Linux Builder.
What components are included in the RHSA-2024:8801 update?
The RHSA-2024:8801 update includes the openexr, openexr-debuginfo, openexr-debugsource, and openexr-libs packages.
Is RHSA-2024:8801 applicable to all Red Hat systems?
No, RHSA-2024:8801 is specific to certain Red Hat Enterprise Linux versions and architectures.